CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects Microsoft. Its EPSS score suggests a 11.9% probability of exploitation in the next 30 days. It may be remotely exploitable.
CVE
CVE-2005-3312
Severity
MEDIUM
CVSS
4.3
EPSS
11.89%
Microsoft
Original NVD Description
The HTML rendering engine in Microsoft Internet Explorer 6.0 allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML in corrupted images and other files such as .GIF, JPG, and WAV, which is rendered as HTML when the user clicks on the link, even though the web server response and file extension indicate that it should be treated as a different file type.